IBM / cloudant-go-sdk

Cloudant SDK for Go
Apache License 2.0
21 stars 12 forks source link

ci: explicit actions permissions #541

Closed ricellis closed 2 weeks ago

ricellis commented 2 weeks ago

PR summary

Explicit include of only necessary permissions for actions token.

Fixes: part of s1014

Note: An existing issue is required before opening a PR.

PR Checklist

Please make sure that your PR fulfills the following requirements:

PR Type

What is the current behavior?

Default restrictive token is applied.

What is the new behavior?

permissions: {} Give the token no additional permissions (the empty set includes metadata: read which is always given). content: read should not be needed even for checkout since it is a public repository.

Does this PR introduce a breaking change?

Other information